VYPR

CWE-476

NULL Pointer Dereference

BaseStableLikelihood: Medium

Description

The product dereferences a pointer that it expects to be valid but is NULL.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (5,530)

page 79 of 277
  • CVE-2025-53181MedJul 7, 2025
    risk 0.42cvss 6.5epss 0.00

    Null pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function stability.

  • CVE-2025-53180MedJul 7, 2025
    risk 0.42cvss 6.5epss 0.00

    Null pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function stability.

  • CVE-2025-53179MedJul 7, 2025
    risk 0.42cvss 6.5epss 0.00

    Null pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function stability.

  • CVE-2025-53603HigJul 5, 2025
    risk 0.42cvss 7.5epss 0.01

    In Alinto SOPE SOGo 2.0.2 through 5.12.2, sope-core/NGExtensions/NGHashMap.m allows a NULL pointer dereference and SOGo crash via a request in which a parameter in the query string is a duplicate of a parameter in the POST body.

  • CVE-2025-33057MedJun 10, 2025
    risk 0.42cvss 6.5epss 0.02

    Null pointer dereference in Windows Local Security Authority (LSA) allows an authorized attacker to deny service over a network.

  • CVE-2025-4478MedMay 16, 2025
    risk 0.42cvss 6.5epss 0.00

    A flaw was found in the FreeRDP used by Anaconda's remote install feature, where a crafted RDP packet could trigger a segmentation fault. This issue causes the service to crash and remain defunct, resulting in a denial of service. It occurs pre-boot and is likely due to a NULL…

  • CVE-2025-30667MedMay 14, 2025
    risk 0.42cvss 6.5epss 0.01

    NULL pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

  • CVE-2025-30666MedMay 14, 2025
    risk 0.42cvss 6.5epss 0.01

    NULL pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

  • CVE-2025-30665MedMay 14, 2025
    risk 0.42cvss 6.5epss 0.01

    NULL pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

  • CVE-2025-20071MedMay 13, 2025
    risk 0.42cvss 6.5epss 0.00

    NULL pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2025-29835MedMay 13, 2025
    risk 0.42cvss 6.5epss 0.01

    Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

  • CVE-2025-24251MedApr 29, 2025
    risk 0.42cvss 6.5epss 0.00

    The issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An attacker on the local network may cause an unexpected app…

  • CVE-2025-32912MedApr 14, 2025
    risk 0.42cvss 6.5epss 0.00

    A flaw was found in libsoup, where SoupAuthDigest is vulnerable to a NULL pointer dereference. The HTTP server may cause the libsoup client to crash.

  • CVE-2025-32910MedApr 14, 2025
    risk 0.42cvss 6.5epss 0.00

    A flaw was found in libsoup, where soup_auth_digest_authenticate() is vulnerable to a NULL pointer dereference. This issue may cause the libsoup client to crash.

  • CVE-2025-30671MedApr 8, 2025
    risk 0.42cvss 6.5epss 0.00

    Null pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

  • CVE-2025-30670MedApr 8, 2025
    risk 0.42cvss 6.5epss 0.00

    Null pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

  • CVE-2025-2960MedMar 30, 2025
    risk 0.42cvss 6.5epss 0.01

    A vulnerability classified as problematic has been found in TRENDnet TEW-637AP and TEW-638APB 1.2.7/1.3.0.106. This affects the function sub_41DED0 of the file /bin/goahead of the component HTTP Request Handler. The manipulation leads to null pointer dereference. Access to the…

  • CVE-2025-2959MedMar 30, 2025
    risk 0.42cvss 6.5epss 0.01

    A vulnerability was found in TRENDnet TEW-410APB 1.3.06b. It has been rated as problematic. Affected by this issue is the function sub_4019A0 of the file /usr/sbin/httpd of the component HTTP Request Handler. The manipulation leads to null pointer dereference. The attack needs…

  • CVE-2025-2957MedMar 30, 2025
    risk 0.42cvss 6.5epss 0.00

    A vulnerability was found in TRENDnet TEW-411BRP+ 2.07. It has been classified as problematic. Affected is the function sub_401DB0 of the file /usr/sbin/httpd of the component HTTP Request Handler. The manipulation leads to null pointer dereference. The attack can only be…

  • CVE-2025-2956MedMar 30, 2025
    risk 0.42cvss 6.5epss 0.00

    A vulnerability was found in TRENDnet TI-G102i 1.0.7.S0_ /1.0.8.S0_ and classified as problematic. This issue affects the function plugins_call_handle_uri_raw of the file /usr/sbin/lighttpd of the component HTTP Request Handler. The manipulation leads to null pointer…